Rubrica legale - ICT Security Maggio 2004 Autore: Daniela Rocca (SG&A) Gianluca Ramunno (Politecnico di Torino)

Size: px
Start display at page:

Download "Rubrica legale - ICT Security Maggio 2004 Autore: Daniela Rocca (SG&A) Gianluca Ramunno (Politecnico di Torino)"

Transcription

1 ubrica legale - ICT Security Maggio 2004 The standardisation effort in CEN/SSS E-Sign workshop In 1999 the European Commission launched the EESSI (Euroepan Electronic Signature Standardisation Initiative) to support the European Directive 1999/93/EC on the electronic signatures. The activities were divided into two working groups: the ETSI TC-SEC ESI (now TC-ESI) and the CEN/ISSS E-Sign. These working groups, during these years, have worked actively in order to standardize the technical aspects left by the European Directive to the standardisation bodies. So, a certain number of deliverables has been approved. Some of them have been referenced on the Official Journal of the European Community. Some of them are still in itinere. Some of them are in the phase of maintenance. While the activities of ETSI TC-ESI will continue, these of CEN/ISSS E-Sign have been closed on February 2004 with the achievement of the goals. The CEN BT/WG 159 is an ad hoc working group created by CEN to deal with the maintenance of the documents delivered by the CEN/ISSS E-Sign workshop. The kick-off meeting was held on 4 th March with the following provisional conclusions. The s will be grouped in three categories: - the first attempt will be made to transpose as many s as possible (make them ENs or ISes); - for some s transferring their ownership to some de jure organization is an option; - the usage of the remaining ones will be monitored; the ones with market relevance will be transferred or transposed, the others will be allowed to lapse. The purpose of this document is to syntetize the state of art in the field of the documents delivered by CEN/SSS E-Sign workshop. For each the following details are reported: CEN ID title Publication date elation (if any) with by ETSI and/or other bodies (if any) eferences to relevant web pages for WS/E-Sign s WS/E-Sign published s: ionsystem/published+cwas/cwa+download+area.asp#es WS/E-Sign s: SEMA Technologies: DCSSI: BSI: BSI list of SSCD certified PPs: TÜV:

2 CEN/ISSS WS/E-Sign s published, approved and being published: ubrica legale - ICT Security Maggio 2004 CEN Identifier Title Publication date elated : :2004 Security equirements for Trustworthy Systems Part 1: System Security equirements Security equirements for Trustworthy Systems Part 2: Cryptographic Module for CSP Signing Operations with Backup - Protection Profile (CMCSOB-PP) Security equirements for Trustworthy Systems Part 3: Cryptographic Module for CSP Key Generation Services - Protection Profile (CMCKG- PP) June :2004, :2004, , ) Supersedes :2001 2) eferenced in Official Journal with wrong month: the reference must be corrected 1) Will supersede :2002 2) PP (v. 0.28) successfully evaluated by SEMA and certified by DCSSI (waiting for ) 3) Companion specification of :2004 (spin-off from the previous version: :2002) 4) Previous revision (2002) referenced in Official Journal: the reference must be updated after the CEN 5) There is the need to deal with some comments received during the voting and not yet taken into account; these comments are listed in WSES N 0414, an internal WS/E- Sign document 1) Will supersede :2003 2) PP (v. 0.12) not evaluated because of lack of sponsors, but updated according to the certified and after their certifications; if a sponsor were found, it can be submitted for evaluation 3) There is the need to deal with some comments received during the voting and not yet taken into account; these comments are listed in WSES N 0414, an internal WS/E- Sign document

3 ubrica legale - ICT Security Maggio 2004 CEN Identifier Title Publication date elated : : : Security equirements for Trustworthy Systems Part 4: Cryptographic Module for CSP Signing Operations - Protection Profile (CMCSO-PP) Secure Signature-Creation Devices, version 'EAL 4+' Security equirements for Signature Creation Applications General Guidelines for Electronic Signature Verification , , :2004, 14355: :2004, 14355:2004, , , ETSI T , ETSI T ETSI T , :2004, 14170:2004 1) PP (v. 0.28) successfully evaluated by SEMA and certified by DCSSI (waiting for ) 2) Companion specification of (spin-off from the previous version: :2002): same specification as without the backup function 3) Previous revision ( :2002, whose this document is a spin-off) referenced in Official Journal: the reference to this new part must be added after the CEN 4) There is the need to deal with some comments received during the voting and not yet taken into account; these comments are listed in WSES N 0414, an internal WS/E- Sign document 1) Will supersede 14169:2002 2) Three PPs successfully evaluated by TÜV and certified by BSI (Type 1, v Type 2, v Type 3, v. 1.05) 3) Some small errors were found after the certification; the version 2004 of this specification include the list of the corrections that the implementors should apply. The MS Word sources of the three PPs properly amended (v. 1.06) are already available: if a new sponsor were found, they could be submitted for a new evaluation 4) Previous revision (2002) referenced in Official Journal: the reference must be updated after the CEN 1) Will supersede 14170:2001 1) Will supersede 14171:2001

4 ubrica legale - ICT Security Maggio 2004 CEN Identifier Title Publication date elated EESSI Conformity Assessment Guidance - Part 1: General introduction : : : : : :2004 EESSI Conformity Assessment Guidance - Part 2: Certification Authority services and processes EESSI Conformity Assessment Guidance - Part 3: Trustworthy systems managing certificates for electronic signatures EESSI Conformity Assessment Guidance - Part 4: Signature-creation applications and general guidelines for electronic signature verification EESSI Conformity Assessment Guidance - Part 5: Secure signature creation devices EESSI Conformity Assessment Guidance - Part 6: Signature-creation devices supporting signatures other than qualified EESSI Conformity Assessment Guidance - Part 7: Cryptographic modules used by Certification Service Providers for signing operations and key generation services EESSI Conformity Assessment Guidance - Part 8: Time-stamping Authority services and processes Guidelines for the implementation of Secure Signature-Creation Devices , : :2004, ) Will supersede :2001 1) Will supersede :2001 1) Will supersede :2001 1) Will supersede : :2004 1) Will supersede : , :2004, ( :2004) :2004, 14170:2004 1) Will supersede 14355:2002

5 ubrica legale - ICT Security Maggio 2004 CEN Identifier Title Publication date elated Guide on the use of Electronic Signatures - Part 1:?????:2004 Legal and Technical Aspects (Area AB) ?????:2004 (Area AB) Guide on the use of Electronic Signatures - Part 2: Protection Profile for Software Signature Creation Devices Application Interface for smart cards used as Secure Signature Creation Devices - Part 1 - Basic requirements; version 1.09 rev2 Application Interface for smart cards used as Secure Signature Creation Devices - Part 2 - Additional services; version 1.03 rev : : :2004 Evidential Value of Electronic Signatures On going ) Will supersede 14365:2003 1) Will supersede 14365:2003 1) CEN WS/E-Sign expressed the preference that this will be maintained by CEN TC-224 1) CEN WS/E-Sign expressed the preference that this will be maintained by CEN TC-224

6 ubrica legale - ICT Security Maggio 2004 The following schema explains the relationship between Cen/Isss and Etsi deliverables: CEN Area AB ETSI ETSI S ETSI T ETSI T ETSI T Symbols or TS or T Area XX Abbreviations OJ PP S TS T This deliverable is a technical specification (or it will be) This deliverable is a report or a guidance This deliverable has not yet been approved (developed by the Project Team in Area XX) CEN Workshop Agreement (CEN deliverable) Official Journal (of the European Union) Protection Profile (Common Criteria) Special eport (ETSI deliverable) Technical Specification (ETSI deliverable) Technical eport (ETSI deliverable) elationship of dependency elationship of mutual dependency elationship of weak dependency Evaluated and certified PP Not evaluated nor certified PP eferenced in OJ Will be referenced in OJ The schema has been produced for the purpose of the future maintenance of the s developed by CEN/ISSS E-Sign workshop within the EESSI frame. Therefore: 1. all deliverables developed (or being...) by CEN/ISSS E-Sign workshop have been included; 2. not all deliverables developed by ETSI TC-ESI within the EESSI frame have been included in the schema: only the ones related to at least one have been included; 3. the relationships among the ETSI deliverable included in the schema have not been represented; , 14172, and are multipart s 5. the relationships among the parts of a same multipart have not been represented; 6. relationship of dependency: A B means A depends on B (if the content of B is modified, B may need to be modified accordingly); 7. relationship of weak dependency ( A B): the relationship between A and B is not strong, because at the moment no maintenance is planned for B; and have a special relationship not represented: they are the same specification one with the key backup option and the other one without. 9. many deliverables refer to S , therefore these relationships have not been represented

7 ubrica legale - ICT Security Maggio 2004 Gianluca amunno, Politecnico di Torino Daniela occa, Studio Genghini & Associati

Implementation of eidas through Member States Supervisory Bodies

Implementation of eidas through Member States Supervisory Bodies Implementation of eidas through Member States Supervisory Bodies Riccardo Genghini - ETSI TC ESI & CEN-ETSI e-sign Coord. Group Chairman CA Day Berlin June 09 th, 2015 ETSI 2013. All rights reserved 2

More information

COURTESY TRANSLATION

COURTESY TRANSLATION PREMIER MINISTRE Secrétariat général de la défense nationale Paris, 7 April 2003 872 /SGDN/DCSSI/SDR Reference : SIG/P/01.1 Direction centrale de la sécurité des systèmes d information PROCEDURE CERTIFICATION

More information

Protection Profiles for TSP cryptographic modules Part 1: Overview

Protection Profiles for TSP cryptographic modules Part 1: Overview Date: 2015-08 prts 419221-1:2015 Protection Profiles for TSP cryptographic modules Part 1: Overview Document type: Technical Specification Document language: E Contents Introduction...3 1 Scope...4 2 References...4

More information

ETSI TS 102 640-3 V1.1.1 (2008-10) Technical Specification

ETSI TS 102 640-3 V1.1.1 (2008-10) Technical Specification TS 102 640-3 V1.1.1 (2008-10) Technical Specification Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Architecture, Formats and Policies; Part 3: Information Security

More information

ETSI TS 102 640-3 V2.1.1 (2010-01) Technical Specification

ETSI TS 102 640-3 V2.1.1 (2010-01) Technical Specification TS 102 640-3 V2.1.1 (2010-01) Technical Specification Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Part 3: Information Security Policy Requirements for REM Management

More information

In accordance with article 11 of the Law on Electronic Signature (Official Gazette of the Republic of Serbia No. 135/04), REGULATION

In accordance with article 11 of the Law on Electronic Signature (Official Gazette of the Republic of Serbia No. 135/04), REGULATION In accordance with article 11 of the Law on Electronic Signature (Official Gazette of the Republic of Serbia No. 135/04), the Minister of Telecommunications and Information Society hereby promulgates REGULATION

More information

DECREE 132 of the National Security Authority. dated from 26 March 2009

DECREE 132 of the National Security Authority. dated from 26 March 2009 DECREE 132 of the National Security Authority dated from 26 March 2009 on the conditions for providing accredited certification services and requirements for an audit, the extent of an audit and the qualification

More information

ETSI TS 102 640-3 V2.1.2 (2011-09)

ETSI TS 102 640-3 V2.1.2 (2011-09) TS 102 640-3 V2.1.2 (2011-09) Technical Specification Electronic Signatures and Infrastructures (ESI); Registered Electronic Mail (REM); Part 3: Information Security Policy Requirements for REM Management

More information

ETSI TS 101 456 V1.4.3 (2007-05)

ETSI TS 101 456 V1.4.3 (2007-05) TS 101 456 V1.4.3 (2007-05) Technical Specification Electronic Signatures and Infrastructures (ESI); Policy requirements for certification authorities issuing qualified certificates 2 TS 101 456 V1.4.3

More information

ETSI SECURITY WEEK EIDAS Overview CEN/ETSI esignature Standardization including standards for TSP Compliance. ETSI 2015. All rights reserved

ETSI SECURITY WEEK EIDAS Overview CEN/ETSI esignature Standardization including standards for TSP Compliance. ETSI 2015. All rights reserved ETSI SECURITY WEEK EIDAS Overview CEN/ETSI esignature Standardization including standards for TSP Compliance esignature Standards Framework Certificate Authority Time-stamping Signing Servers Validation

More information

TTP.NL Scheme. for management system certification. of Trust Service Providers issuing. Qualified Certificates for Electronic Signatures,

TTP.NL Scheme. for management system certification. of Trust Service Providers issuing. Qualified Certificates for Electronic Signatures, TTP.NL Scheme for management system certification of Trust Service Providers issuing Qualified Certificates for Electronic Signatures, Public Key Certificates, Website Certificates and / or Time-stamp

More information

Security framework. Guidelines for trust services providers Part 1. Version 1.0 December 2013

Security framework. Guidelines for trust services providers Part 1. Version 1.0 December 2013 Security framework Guidelines for trust services providers Part 1 Version 1.0 December 2013 European Union Agency for Network and Information Security www.enisa.europa.eu Security framework Guidelines

More information

INDEPENDENT AUDIT REPORT BASED ON THE REQUIREMENTS OF ETSI TS 101 456. Aristotle University of Thessaloniki PKI (www.pki.auth.gr) WHOM IT MAY CONCERN

INDEPENDENT AUDIT REPORT BASED ON THE REQUIREMENTS OF ETSI TS 101 456. Aristotle University of Thessaloniki PKI (www.pki.auth.gr) WHOM IT MAY CONCERN Title INDEPENDENT AUDIT REPORT BASED ON THE REQUIREMENTS OF ETSI TS 101 456 Customer Aristotle University of Thessaloniki PKI (www.pki.auth.gr) To WHOM IT MAY CONCERN Date 18 March 2011 Independent Audit

More information

TTP.NL Guidance ETSI TS 101 456

TTP.NL Guidance ETSI TS 101 456 ECP.NL TTP.NL on ETSI TS 101 456 Project TTP.NL on ETSI TS 101 456 30 May 2002 ECP.NL, CCvD-TTP.NL TTP.NL on ETSI TS 101 456 Table of Contents Table of Contents... 2 Foreword... 3 1 Scope... 4 2 References...

More information

How To Understand And Understand The Certificate Authority (Ca)

How To Understand And Understand The Certificate Authority (Ca) TS 102 042 V1.1.1 (2002-04) Technical Specification Policy requirements for certification authorities issuing public key certificates 2 TS 102 042 V1.1.1 (2002-04) Reference DTS/SEC-004006 Keywords e-commerce,

More information

ETSI TC ESI PRESENTATION TO CAB FORUM. ETSI 2015. All rights reserved

ETSI TC ESI PRESENTATION TO CAB FORUM. ETSI 2015. All rights reserved ETSI TC ESI PRESENTATION TO CAB FORUM Iñigo Barreira March 2015 meeting, Cupertino ETSI 2015. All rights reserved Index ETSI Deliverables. Dates ETSI audits eidas timeline: Qualified web site certificates

More information

CERTIFICATE REVIEW RECORD

CERTIFICATE REVIEW RECORD REVIEW HUNGUARD Informatics and IT R&D and General Service Provider Ltd. as a certification authority assigned by the assignment document No. 001/2010 of the Minister of the Prime Minister s Office of

More information

Protection Profile Secure Signature-Creation Device Type 3

Protection Profile Secure Signature-Creation Device Type 3 Protection Profile Secure Signature-Creation Device Type 3 Version: 1.05, EAL 4+ Wednesday, 25 July 2001 Prepared By: ESIGN Workshop - Expert Group F Prepared For: CEN/ISSS Note: This Protection Profile

More information

esignature building block Introduction to the Connecting Europe Facility DIGIT Directorate-General for Informatics

esignature building block Introduction to the Connecting Europe Facility DIGIT Directorate-General for Informatics Introduction to the Connecting Europe Facility esignature building block DIGIT Directorate-General for Informatics DG CONNECT Directorate-General for Communications Networks, Content and Technology February

More information

ONR CEN/TS 419241. Security Requirements for Trustworthy Systems Supporting Server Signing (prcen/ts 419241:2013) DRAFT ICS 35.240.

ONR CEN/TS 419241. Security Requirements for Trustworthy Systems Supporting Server Signing (prcen/ts 419241:2013) DRAFT ICS 35.240. ICS 35.240.99 DRAFT ONR CEN/TS 419241 Security Requirements for Trustworthy Systems Supporting Server Signing (prcen/ts 419241:2013) Sicherheitsanforderungen für Vertrauenswürdige Systeme, die Serversignaturen

More information

The Mobile Phone Signature in edemocracy and egovernment Applications. Gregor.eibl@bka.gv.at

The Mobile Phone Signature in edemocracy and egovernment Applications. Gregor.eibl@bka.gv.at The Mobile Phone Signature in edemocracy and egovernment Applications Gregor.eibl@bka.gv.at Characteristics of the Citizen Card ( 4 Abs. 1 E-GovG) unique identity authenticity Citizen Card = before authenfication:

More information

SSLPost Electronic Document Signing

SSLPost Electronic Document Signing SSLPost Electronic Document Signing Overview What is a Qualifying Advanced Electronic Signature (QAES)? A Qualifying Advanced Electronic Signature, is a specific type of digital electronic signature, that

More information

Hungarian Electronic Public Administration Interoperability Framework (MEKIK) Technical Standards Catalogue

Hungarian Electronic Public Administration Interoperability Framework (MEKIK) Technical Standards Catalogue Hungarian Electronic Public Administration Interoperability Framework (MEKIK) Technical Standards Catalogue Zsolt Sikolya Ministry of Informatics and Communications (IHM) Tel: +3614613366, Fax: +3614613548

More information

ETSI TR 119 000 V0.0.3 (2014-01)

ETSI TR 119 000 V0.0.3 (2014-01) TR 119 000 V0.0.3 (2014-01) TECHNICAL REPORT Electronic Signatures and Infrastructures (ESI); Rationalised structure for Electronic Signature Standardisation COMPLETE DRAFT FOR PUBLIC REVIEW UNTIL 7 MARCH

More information

English version. Guidelines for the implementation of Secure Signature-Creation Devices

English version. Guidelines for the implementation of Secure Signature-Creation Devices CEN WORKSHOP CWA 14355 March 2004 AGREEMENT ICS 03.160; 35.040; 35.100.05 Supersedes CWA 14355:2002 English version Guidelines for the implementation of Secure Signature-Creation Devices This CEN Workshop

More information

Courtesy Translation

Courtesy Translation Direction centrale de la sécurité des systèmes d information Protection Profile Electronic Signature Creation Application Date : July 17th, 2008 Reference : Version : 1.6 Courtesy Translation Courtesy

More information

Danske Bank Group Certificate Policy

Danske Bank Group Certificate Policy Document history Version Date Remarks 1.0 19-05-2011 finalized 1.01 15-11-2012 URL updated after web page restructuring. 2 Table of Contents 1. Introduction... 4 2. Policy administration... 4 2.1 Overview...

More information

Qualified Time Stamping and eregistered Delivery Services Overall considerations

Qualified Time Stamping and eregistered Delivery Services Overall considerations eias Study on an electronic identification, authentication and signature policy Qualified Time Stamping and eregistered Delivery Services Overall considerations Building blocks for secondary legislation

More information

BSI-PP-0004-2002. for. Protection Profile Secure Signature-Creation Device Type 1, Version 1.05. developed by

BSI-PP-0004-2002. for. Protection Profile Secure Signature-Creation Device Type 1, Version 1.05. developed by BSI-PP-0004-2002 for Protection Profile Secure Signature-Creation Device Type 1, Version 1.05 developed by CEN/ISSS Information Society Standardization System, Workshop on Electronic Signatures - Bundesamt

More information

EUROPEAN COMMITTEE FOR STANDARDIZATION COMITÉ EUROPÉEN DE NORMALISATION EUROPÄISCHES KOMITEE FÜR NORMUNG

EUROPEAN COMMITTEE FOR STANDARDIZATION COMITÉ EUROPÉEN DE NORMALISATION EUROPÄISCHES KOMITEE FÜR NORMUNG EUROPEAN COMMITTEE FOR STANDARDIZATION COMITÉ EUROPÉEN DE NORMALISATION EUROPÄISCHES KOMITEE FÜR NORMUNG WORKSHOP CWA 14167-2 AGREEMENT March 2002 ICS 03.120.20; 35.040 Dit document mag slechts op een

More information

Multiple electronic signatures on multiple documents

Multiple electronic signatures on multiple documents Multiple electronic signatures on multiple documents Antonio Lioy and Gianluca Ramunno Politecnico di Torino Dip. di Automatica e Informatica Torino (Italy) e-mail: lioy@polito.it, ramunno@polito.it web

More information

ELECTRONIC SIGNATURES AND ASSOCIATED LEGISLATION

ELECTRONIC SIGNATURES AND ASSOCIATED LEGISLATION ELECTRONIC SIGNATURES AND ASSOCIATED LEGISLATION This can be a complex subject and the following text offers a brief introduction to Electronic Signatures, followed by more background on the Register of

More information

ETSI TS 102 042 V2.4.1 (2013-02)

ETSI TS 102 042 V2.4.1 (2013-02) TS 102 042 V2.4.1 (2013-02) Technical Specification Electronic Signatures and Infrastructures (ESI); Policy requirements for certification authorities issuing public key certificates 2 TS 102 042 V2.4.1

More information

Electronic signature and compliance assurance: what s new?

Electronic signature and compliance assurance: what s new? Electronic signature and compliance assurance: what s new? Ignacio ( Nacho ) Alamillo Domingo, CISA, CISM, ITIL-F ISACA Valencia Chapter Research Director Astrea Managing Partner March 2013 2 Table of

More information

Secure Information Technology Center Signature verification and digital services

Secure Information Technology Center Signature verification and digital services Secure Information Technology Center Signature verification and digital services Herbert Leitold, A-SIT Study Visit Georgian Delegation Vienna, 16 th February 2015 Zentrum für sichere Informationstechnologie

More information

TC TrustCenter GmbH Time-Stamp Policy

TC TrustCenter GmbH Time-Stamp Policy GmbH Time-Stamp Policy NOTE: The information contained in this document is the property of TC TrustCenter GmbH. This document may not be copied, distributed, used, stored or transmitted in any form or

More information

ETSI TS 102 176-2 V1.2.1 (2005-07)

ETSI TS 102 176-2 V1.2.1 (2005-07) TS 102 176-2 V1.2.1 (2005-07) Technical Specification Electronic Signatures and Infrastructures (ESI); Algorithms and Parameters for Secure Electronic Signatures; Part 2: Secure channel protocols and algorithms

More information

Draft ETSI EN 319 411-3 V1.0.0 (2012-04)

Draft ETSI EN 319 411-3 V1.0.0 (2012-04) Draft EN 319 411-3 V1.0.0 (2012-04) European Standard Electronic Signatures and Infrastructures (ESI); Policy and security requirements for Trust Service Providers issuing certificates; Part 3: Policy

More information

Electronic Signature: Conform to the CC Anytime, Anywhere, with any Device September 20, 2012

Electronic Signature: Conform to the CC Anytime, Anywhere, with any Device September 20, 2012 Electronic Signature: Conform to the CC Anytime, Anywhere, with any Device September 20, 2012 DICTAO 152, avenue Malakoff 75116 PARIS, France Tel. : +33 (0)1 73 00 26 10 Internet : www.dictao.com Agenda

More information

Future directions of the AusCERT Certificate Service

Future directions of the AusCERT Certificate Service Future directions of the AusCERT Certificate Service QV Advanced Plus certificates Purpose Digital signatures non-repudiation, authenticity and integrity Encryption - confidentiality Client authentication

More information

Land Registry. Version 4.0 10/09/2009. Certificate Policy

Land Registry. Version 4.0 10/09/2009. Certificate Policy Land Registry Version 4.0 10/09/2009 Certificate Policy Contents 1 Background 5 2 Scope 6 3 References 6 4 Definitions 7 5 General approach policy and contract responsibilities 9 5.1 Background 9 5.2

More information

Volker Jacumeit, DIN e. V. ILNAS Workshop CSCG Presentation June 4, 2015

Volker Jacumeit, DIN e. V. ILNAS Workshop CSCG Presentation June 4, 2015 Volker Jacumeit, DIN e. V. ILNAS Workshop CSCG Presentation June 4, 2015 Cyber Security Coordination Group Who we are: Advisory body of the European Standards Organizations Composed of experts from CEN/CLC

More information

FEDERAL LAW GAZETTE FOR THE REPUBLIC OF AUSTRIA. Year 2015 Issued on December 11, 2015 Part II

FEDERAL LAW GAZETTE FOR THE REPUBLIC OF AUSTRIA. Year 2015 Issued on December 11, 2015 Part II 1 of 11 FEDERAL LAW GAZETTE FOR THE REPUBLIC OF AUSTRIA Year 2015 Issued on December 11, 2015 Part II 410th Regulation: Cash Register Security Regulation, [RKSV] 410th Regulation by the Federal Minister

More information

TC TrustCenter GmbH Time-Stamp Practice and Disclosure Statement

TC TrustCenter GmbH Time-Stamp Practice and Disclosure Statement GmbH NOTE: The information contained in this document is the property of TC TrustCenter GmbH. This document may not be copied, distributed, used, stored or transmitted in any form or by any means, whether

More information

COMMISSION OF THE EUROPEAN COMMUNITIES

COMMISSION OF THE EUROPEAN COMMUNITIES EN EN EN COMMISSION OF THE EUROPEAN COMMUNITIES Brussels, 28.11.2008 COM(2008) 798 final COMMUNICATION FROM THE COMMISSION TO THE COUNCIL, THE EUROPEAN PARLIAMENT, THE EUROPEAN ECONOMIC AND SOCIAL COMMITTEE

More information

fulfils all requirements defined in the technical specification The appendix to the certificate is part of the certificate and consists of 6 pages.

fulfils all requirements defined in the technical specification The appendix to the certificate is part of the certificate and consists of 6 pages. The certification body of TÜV Informationstechnik GmbH hereby awards this certificate to the company Fabrica Nacional de Moneda y Timbre. Real Casa de la Moneda C/Jorge Juan, 106 28009 Madrid, Spain to

More information

http://www.arx.com/about/press-room/interviews/nacho-alamillo-digital-signature-expert

http://www.arx.com/about/press-room/interviews/nacho-alamillo-digital-signature-expert 1 de 7 16/06/2014 9:48 Contact Us Search Home (http://www.arx.com) About (http://www.arx.com/about/) Media (http://www.arx.com/about/press-room/) Interviews (http://www.arx.com/about/press-room/interviews/)

More information

ETSI EN 319 412-2 V2.1.1 (2016-02)

ETSI EN 319 412-2 V2.1.1 (2016-02) EN 319 412-2 V2.1.1 (2016-02) EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Certificate Profiles; Part 2: Certificate profile for certificates issued to natural persons 2 EN 319 412-2

More information

Secure Signature Creation Devices (SSCDs)

Secure Signature Creation Devices (SSCDs) Secure Signature Creation Devices (SSCDs) from different approaches Dr. István Zsolt BERTA istvan.berta@microsec.hu Microsec Ltd. Requirements for SSCDs Annex III of the e-signature Directive, in plain

More information

CASE 8: Procurement of public key infrastructure

CASE 8: Procurement of public key infrastructure CASE 8: Procurement of public key infrastructure Uni. Athens / CERES Country / region Netherlands Short description This is the case of an integrated central e-government infrastructure for issuing and

More information

Forum of European Supervisory Authorities for Electronic Signatures (FESA) Working Paper on Qualified Certificates for Automatically Signing Systems

Forum of European Supervisory Authorities for Electronic Signatures (FESA) Working Paper on Qualified Certificates for Automatically Signing Systems Forum of European Supervisory Authorities for Electronic Signatures (FESA) Working Paper on Qualified Certificates for Automatically Signing Systems October 12, 2004 It is a frequently asked question if

More information

Study on Mutual Recognition of esignatures: update of Country Profiles Icelandic country profile

Study on Mutual Recognition of esignatures: update of Country Profiles Icelandic country profile Study on Mutual Recognition of esignatures: update of Country Profiles Icelandic country profile This report / paper was prepared for the IDABC programme by: Coordinated by: Hans Graux (time.lex), Brigitte

More information

SECURE AND EFFICIENT PROCESSING OF ELECTRONIC DOCUMENTS IN THE CLOUD

SECURE AND EFFICIENT PROCESSING OF ELECTRONIC DOCUMENTS IN THE CLOUD SECURE AND EFFICIENT PROCESSING OF ELECTRONIC DOCUMENTS IN THE CLOUD Klaus Stranacher, Bernd Zwattendorfer, Vesna Krnjic Graz University of Technology, E-Government Innovation Center, EGIZ Inffeldgasse

More information

ETSI TS 102 042: Electronic Signatures and Infrastructures (ESI): Policy

ETSI TS 102 042: Electronic Signatures and Infrastructures (ESI): Policy Abbreviations AIS BGBl BNetzA BSI CC CEM CSP DAR DATech DIN EAL ETR ETSI ISO IT ITSEC ITSEF ITSEM JIL PP SF SigG SigV SOF Anwendungshinweise und Interpretationen zum Schema [Guidance and Interpretations

More information

2012 ISO TC46/SC4/WG11 N246

2012 ISO TC46/SC4/WG11 N246 RFID PRIVACY IN EUROPE Implications for Libraries Paul Chartier Convergent Software Ltd CILIP Conference, Nov 2012 ISO TC46/SC4/WG11 N246 Today s Presentation Broad Overview of the EU position A bit of

More information

Lessons learnt in writing PP/ST. Wolfgang Killmann T-Systems

Lessons learnt in writing PP/ST. Wolfgang Killmann T-Systems Lessons learnt in writing PP/ST Wolfgang Killmann T-Systems Overview of the talk Lessons learnt in writing PP/ST Practical experience of PP/ST writing Issues with and suggestions for PP/ST writing Conformance

More information

TECHNICAL REPORT Electronic Signatures and Infrastructures (ESI); The framework for standardization of signatures: overview

TECHNICAL REPORT Electronic Signatures and Infrastructures (ESI); The framework for standardization of signatures: overview TR 119 000 V1.2.1 (2016-04) TECHNICAL REPORT Electronic Signatures and Infrastructures (ESI); The framework for standardization of signatures: overview 2 TR 119 000 V1.2.1 (2016-04) Reference RTR/ESI-0019000v121

More information

CEN/ISSS ebif Project Global e-business Interoperability Test Bed Methodologies. Terms of Reference for the Project Team version 1

CEN/ISSS ebif Project Global e-business Interoperability Test Bed Methodologies. Terms of Reference for the Project Team version 1 CEN/ISSS ebif Project Global e-business Interoperability Test Bed Methodologies Terms of Reference for the Project Team version 1 Date: 21 November 2008 Status: adopted 1 1. Scope These Terms of Reference

More information

Draft SR 019 020 V0.0.4 (2013-11)

Draft SR 019 020 V0.0.4 (2013-11) SPECIAL REPORT Rationalised Framework of Standards for Advanced Electronic Signatures in Mobile Environment STABLE DRAFT FOR PUBLIC REVIEW UNTIL 15 JANUARY 2014 Download the template for comments: http://docbox.etsi.org/esi/open/latest_drafts/templatefor-comments.doc

More information

Developing a new Protection Profile for (U)SIM UICC platforms. ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R.

Developing a new Protection Profile for (U)SIM UICC platforms. ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R. Developing a new Protection Profile for (U)SIM UICC platforms ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R.Presty Project Background A Protection Profile for (U)SIM Security Requirements

More information

Secure Signature Creation Device Protect & Sign Personal Signature, version 4.1

Secure Signature Creation Device Protect & Sign Personal Signature, version 4.1 Zentrum für sichere Informationstechnologie Austria Secure Information Technology Center Austria A-1030 Wien, Seidlgasse 22 / 9 Tel.: (+43 1) 503 19 63 0 Fax: (+43 1) 503 19 63 66 A-8010 Graz, Inffeldgasse

More information

Technical Report Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 2: Guidelines for Assessors

Technical Report Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 2: Guidelines for Assessors TR 101 533-2 V1.2.1 (2011-12) Technical Report Electronic Signatures and Infrastructures (ESI); Data Preservation Systems Security; Part 2: Guidelines for Assessors 2 TR 101 533-2 V1.2.1 (2011-12) Reference

More information

E-TUGRA INFORMATIC TECHNOLOGIES AND SERVICES CORP (E-TUGRA)

E-TUGRA INFORMATIC TECHNOLOGIES AND SERVICES CORP (E-TUGRA) E-TUGRA INFORMATIC TECHNOLOGIES AND SERVICES CORP (E-TUGRA) QUALIFIED CERTIFICATE POLICY AND PRACTICE STATEMENT (CP-CPS) VERSION 1.0 DATE OF ENTRY INTO FORCE : JUNE, 2008 OID 2.16.792.3.0.4.1.1.2 E-TUGRA

More information

ETSI TR 102 458 V1.1.1 (2006-04)

ETSI TR 102 458 V1.1.1 (2006-04) TR 102 458 V1.1.1 (2006-04) Technical Report Electronic Signatures and Infrastructures (ESI); Mapping Comparison Matrix between the US Federal Bridge CA Certificate Policy and the European Qualified Certificate

More information

National Authority for Electronic Certification. Electronic Signature in Albania by Eris Asllani- Head of Department

National Authority for Electronic Certification. Electronic Signature in Albania by Eris Asllani- Head of Department National Authority for Electronic Certification Electronic Signature in Albania by Eris Asllani- Head of Department Roma - - - 2011 *General Statistics Population - 3,200,000 (est.) Area - 28.748 sq/km

More information

Digital Internal Market

Digital Internal Market DIRECTORATE GENERAL FOR INTERNAL POLICIES POLICY DEPARTMENT A: ECONOMIC AND SCIENTIFIC POLICY INTERNAL MARKET AND CONSUMER PROTECTION Digital Internal Market STUDY Abstract The study examines the progress

More information

Submitted to the EC on 03/06/2012. COMPETITIVENESS AND INNOVATION FRAMEWORK PROGRAMME ICT Policy Support Programme (ICT PSP) e-codex

Submitted to the EC on 03/06/2012. COMPETITIVENESS AND INNOVATION FRAMEWORK PROGRAMME ICT Policy Support Programme (ICT PSP) e-codex Submitted to the EC on 03/06/2012 COMPETITIVENESS AND INNOVATION FRAMEWORK PROGRAMME ICT Policy Support Programme (ICT PSP) e-codex e-justice Communication via Online Data Exchange ICT PSP call identifier:

More information

EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL

EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL Innovation policy Technology for innovation; ICT industries and E-business Brussels, 7 th December 2005 DG ENTR/D4 M 376 - EN STANDARDISATION

More information

ISO 14001:2004 Environmental Management System Manual

ISO 14001:2004 Environmental Management System Manual ISO 14001:2004 Environmental Management System Manual Company Name/Logo Document No Rev Uncontrolled Copy Controlled Copy Date COMPANY PROPRIETARY INFORMATION Prior to use, ensure this document is the

More information

EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Policy and Security Requirements for Trust Service Providers issuing Time-Stamps

EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Policy and Security Requirements for Trust Service Providers issuing Time-Stamps EN 319 421 V1.1.1 (2016-03) EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Policy and Security Requirements for Trust Service Providers issuing Time-Stamps 2 EN 319 421 V1.1.1 (2016-03)

More information

European Electronic Identity Practices Country Update of Portugal

European Electronic Identity Practices Country Update of Portugal European Electronic Identity Practices Country Update of Portugal Speaker: Anabela Pedroso anabela.pedroso@umic.pt Date: 3 November 2006 1. Status of National legislation on eid Are eid specific regulations

More information

Neutralus Certification Practices Statement

Neutralus Certification Practices Statement Neutralus Certification Practices Statement Version 2.8 April, 2013 INDEX INDEX...1 1.0 INTRODUCTION...3 1.1 Overview...3 1.2 Policy Identification...3 1.3 Community & Applicability...3 1.4 Contact Details...3

More information

NIS Direktive und Europäische sicherheitsrelevante Projekte Udo Helmbrecht Executive Director, ENISA

NIS Direktive und Europäische sicherheitsrelevante Projekte Udo Helmbrecht Executive Director, ENISA NIS Direktive und Europäische sicherheitsrelevante Projekte Udo Helmbrecht Executive Director, ENISA ViS!T - Verwaltung integriert sichere Informationstechnologie, Wien, 29.10.2014 European Union Agency

More information

Reference DEN/ESI-0019411-1. Keywords e-commerce, electronic signature, extended validation certificat, public key, security, trust services ETSI

Reference DEN/ESI-0019411-1. Keywords e-commerce, electronic signature, extended validation certificat, public key, security, trust services ETSI Draft EN 319 411-1 V1.0.0 (2015-06) EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Policy and security requirements for Trust Service Providers issuing certificates; Part 1: General

More information

Smart grid cyber security certification

Smart grid cyber security certification Smart grid cyber security certification 1 Introduction On 30th September 2014 ENISA organised a workshop where the results of the report on Smart grid security certification (to be published by end of

More information

Ericsson Group Certificate Value Statement - 2013

Ericsson Group Certificate Value Statement - 2013 COMPANY INFO 1 (23) Ericsson Group Certificate Value Statement - 2013 COMPANY INFO 2 (23) Contents 1 Ericsson Certificate Value Statement... 3 2 Introduction... 3 2.1 Overview... 3 3 Contact information...

More information

Cryptographic Modules, Security Level Enhanced. Endorsed by the Bundesamt für Sicherheit in der Informationstechnik

Cryptographic Modules, Security Level Enhanced. Endorsed by the Bundesamt für Sicherheit in der Informationstechnik Common Criteria Protection Profile Cryptographic Modules, Security Level Enhanced BSI-CC-PP-0045 Endorsed by the Foreword This Protection Profile - Cryptographic Modules, Security Level Enhanced - is issued

More information

WORKING DOCUMENT FOR SCC CONSULTATION CONSTRUCT09/874 EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL

WORKING DOCUMENT FOR SCC CONSULTATION CONSTRUCT09/874 EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL WORKING DOCUMENT FOR SCC CONSULTATION CONSTRUCT09/874 EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL New Approach Industries, Tourism and CSR Construction, Pressure Equipment, Metrology

More information

NIST-Workshop 10 & 11 April 2013

NIST-Workshop 10 & 11 April 2013 NIST-Workshop 10 & 11 April 2013 EUROPEAN APPROACH TO OVERSIGHT OF "TRUST SERVICE PROVIDERS" Presented by Arno Fiedler, Member of European Telecommunications Standards Institute Electronic Signatures and

More information

ETSI TR 103 123 V1.1.1 (2012-11)

ETSI TR 103 123 V1.1.1 (2012-11) TR 103 123 V1.1.1 (2012-11) Technical Report Electronic Signatures and Infrastructures (ESI); Guidance for Auditors and CSPs on TS 102 042 for Issuing Publicly-Trusted TLS/SSL Certificates 2 TR 103 123

More information

ETSI EN 319 401 V1.1.1 (2013-01)

ETSI EN 319 401 V1.1.1 (2013-01) EN 319 401 V1.1.1 (2013-01) European Standard Electronic Signatures and Infrastructures (ESI); General Policy Requirements for Trust Service Providers supporting Electronic Signatures 2 EN 319 401 V1.1.1

More information

ETSI EN 319 411-2 V2.1.1 (2016-02)

ETSI EN 319 411-2 V2.1.1 (2016-02) EN 319 411-2 V2.1.1 (2016-02) EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Policy and security requirements for Trust Service Providers issuing certificates; Part 2: Requirements

More information

English version. Specifications for a Web Accessibility Conformity Assessment Scheme and a Web Accessibility Quality Mark

English version. Specifications for a Web Accessibility Conformity Assessment Scheme and a Web Accessibility Quality Mark CEN WORKSHOP CWA 15554 June 2006 AGREEMENT ICS 35.240.99 English version Specifications for a Web Accessibility Conformity Assessment Scheme and a Web Accessibility Quality Mark This CEN Workshop Agreement

More information

ETSI TS 119 403 V2.1.1 (2014-11)

ETSI TS 119 403 V2.1.1 (2014-11) TS 119 403 V2.1.1 (2014-11) TECHNICAL SPECIFICATION Electronic Signatures and Infrastructures (ESI); Trust Service Provider Conformity Assessment - Requirements for conformity assessment bodies assessing

More information

ETSI TS 102 778-3 V1.1.2 (2009-12) Technical Specification

ETSI TS 102 778-3 V1.1.2 (2009-12) Technical Specification TS 102 778-3 V1.1.2 (2009-12) Technical Specification Electronic Signatures and Infrastructures (ESI); PDF Advanced Electronic Signature Profiles; Part 3: PAdES Enhanced - PAdES-BES and PAdES-EPES Profiles

More information

Internet of Things - Internet of the Future" Workshop in Oslo 2012 02 01

Internet of Things - Internet of the Future Workshop in Oslo 2012 02 01 Internet of Things - Internet of the Future" Workshop in Oslo 2012 02 01 The IoT Value Creation Network, Norway Project in the VERDIKT-program The Research Council of Norway Today s Focus CEN and Internet

More information

Identity Management Initiatives in identity management and emerging standards Presented to Fondazione Ugo Bordoni Rome, Italy

Identity Management Initiatives in identity management and emerging standards Presented to Fondazione Ugo Bordoni Rome, Italy Identity Management Initiatives in identity management and emerging standards Presented to Fondazione Ugo Bordoni Rome, Italy November 18, 2008 Teresa Schwarzhoff Computer Security Division Information

More information

Part 2: ICT security standards and guidance documents

Part 2: ICT security standards and guidance documents Part 2: ICT security standards and guidance documents Version 3.0 April, 2007 Introduction The purpose of this part of the Security Standards Roadmap is to provide a summary of existing, approved ICT security

More information

The legal and market aspects of electronic signatures

The legal and market aspects of electronic signatures Schwerpunkt The legal and market aspects of electronic signatures Jos Dumortier, Stefan Kelm, Hans Nilsson, Georgia Skouma, Patrick van Eecke Artikel 12 der EG-Richtlinie zu elektronischen Signaturen verpflichtet

More information

fulfils all requirements defined in the technical specification The appendix to the certificate is part of the certificate and consists of 6 pages.

fulfils all requirements defined in the technical specification The appendix to the certificate is part of the certificate and consists of 6 pages. The certification body of TÜV Informationstechnik GmbH hereby awards this certificate to the company D-TRUST GmbH Kommandantenstraße 15 10969 Berlin, Germany to confirm that its certification service D

More information

Digital Signatures in Reality. Tarvi Martens SK

Digital Signatures in Reality. Tarvi Martens SK Digital Signatures in Reality Tarvi Martens SK Free-flowing digital documents Estonia has deployed digitally signed documents which are recognised universally. These are: Perfectly legal For use in arbitrary

More information

CERTIFICATE. certifies that the. Info&AA v1.0 Attribute Service Provider Software. developed by InfoScope Ltd.

CERTIFICATE. certifies that the. Info&AA v1.0 Attribute Service Provider Software. developed by InfoScope Ltd. CERTIFICATE HUNGUARD Informatics and IT R&D and General Service Provider Ltd. as a certification authority assigned by the assignment document No. 001/2010 of the Minister of the Prime Minister s Office

More information

COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34 COMMITTEE)

COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34 COMMITTEE) EUROPEAN COMMISSION ENTERPRISE AND INDUSTRY DIRECTORATE-GENERAL Regulatory Policy Standardisation Brussels, 9 th November 2005 Doc.: 34/2005 Rev. 1 EN COMMITTEE ON STANDARDS AND TECHNICAL REGULATIONS (98/34

More information

Fact sheet: sa Certipost nv. Certipost Panel Presentation European Commission. Company. Activities based on 2 pillars: Clients.

Fact sheet: sa Certipost nv. Certipost Panel Presentation European Commission. Company. Activities based on 2 pillars: Clients. Certipost Panel Presentation European Commission Bart Callens Product and Sales Manager Document Protection Services 1 Fact sheet: sa Certipost nv Company Shareholders De Post/La Poste, 50% Belgacom, 50%

More information

Details for the structure and content of the ETR for Site Certification. Version 1.0

Details for the structure and content of the ETR for Site Certification. Version 1.0 Details for the structure and content of the ETR for Site Certification Version 1.0 Bundesamt für Sicherheit in der Informationstechnik Postfach 20 03 63 53133 Bonn Tel.: +49 22899 9582-111 E-Mail: zerti@bsi.bund.de

More information

ETSI EN 319 403 V2.2.2 (2015-08)

ETSI EN 319 403 V2.2.2 (2015-08) EN 319 403 V2.2.2 (2015-08) EUROPEAN STANDARD Electronic Signatures and Infrastructures (ESI); Trust Service Provider Conformity Assessment - Requirements for conformity assessment bodies assessing Trust

More information

UKAS Guidance for bodies operating certification of Trust Service Providers seeking approval under tscheme

UKAS Guidance for bodies operating certification of Trust Service Providers seeking approval under tscheme CIS 3 EDITION 2 February 2014 UKAS Guidance for bodies operating certification of Trust Service Providers seeking approval under tscheme CONTENTS SECTION PAGE 1 Introduction 2 2 Requirements for Certification

More information